Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
51 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-1402 2026-05-29 11:18 2026-05-27 Show GitHub Exploit DB Packet Storm
52 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-23292 2026-05-29 11:18 2026-03-25 Show GitHub Exploit DB Packet Storm
53 9.8 緊急
Network
マイクロソフト Microsoft Power Pages Microsoft Power Pages Remote Code Execution Vulnerability CWE-77
コマンドインジェクション
CVE-2026-23652 2026-05-29 11:18 2026-05-22 Show GitHub Exploit DB Packet Storm
54 7.1 重要
Network
lfprojects mlflow lfprojectsのmlflowにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-2393 2026-05-29 11:18 2026-05-11 Show GitHub Exploit DB Packet Storm
55 4.7 警告
Local
NVIDIA gpu display driver NVIDIAのgpu display driverにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-24199 2026-05-29 11:18 2026-05-26 Show GitHub Exploit DB Packet Storm
56 9.8 緊急
Network
NVIDIA Isaac Launchable NVIDIAのIsaac Launchableにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2026-24212 2026-05-29 11:18 2026-05-26 Show GitHub Exploit DB Packet Storm
57 6.1 警告
Network
Joomla! Joomla! Joomla!におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-25900 2026-05-29 11:18 2026-05-26 Show GitHub Exploit DB Packet Storm
58 6.1 警告
Network
Joomla! Joomla! Joomla!におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-25901 2026-05-29 11:18 2026-05-26 Show GitHub Exploit DB Packet Storm
59 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-2601 2026-05-29 11:18 2026-05-27 Show GitHub Exploit DB Packet Storm
60 7.5 重要
Network
lfprojects mlflow lfprojectsのmlflowにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-2614 2026-05-29 11:17 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311111 - - - The Jetpack WordPress plugin does not have proper authorisation in one of its REST endpoint, allowing any authenticated users, such as subscriber to read arbitrary feedbacks data sent via the Jetpack… - CVE-2024-9926 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
311112 - - - A flaw was found in moodle. A local file may include risks when restoring block backups. - CVE-2024-43440 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311113 - - - A flaw was found in Feedback. Bulk messaging in the activity's non-respondents report did not verify message recipients belonging to the set of users returned by the report. - CVE-2024-43438 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311114 - - - A SQL injection risk flaw was found in the XMLDB editor tool available to site administrators. - CVE-2024-43436 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311115 - - - The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability. - CVE-2024-43434 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311116 - - - A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access. - CVE-2024-43431 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311117 - - - To address a cache poisoning risk in Moodle, additional validation for local storage was required. - CVE-2024-43428 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311118 - - - A flaw was found in pdfTeX. Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available, such as those with TeX Live installed. - CVE-2024-43426 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311119 - - - A flaw was found in Moodle. Additional restrictions are required to avoid a remote code execution risk in calculated question types. Note: This requires the capability to add/update questions. - CVE-2024-43425 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
311120 6.4 MEDIUM
Network
- - The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Blog widget in all v… CWE-79
Cross-site Scripting
CVE-2024-8442 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm